CVE Published: 25/11/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: Chrome |
Vendor: Google |
Product: Chrome Status : PUBLISHED
CVE-2019-5864 Description
Insufficient data validation in CORS in Google Chrome prior to 76.0.3809.87 allowed an attacker who convinced a user to install a malicious extension to bypass content security policy via a crafted Chrome Extension.